扫描报告
5 /100
groundapi_web_researcher
Deep web research assistant — search, scrape, and synthesize information from multiple sources into a structured report. Powered by GroundAPI MCP tools.
This is a legitimate web research assistant skill that uses GroundAPI MCP tools for searching and scraping web content. All declared capabilities match the documented functionality with no hidden or suspicious behavior.
可以安装
This skill is safe to use. No security concerns identified.
| 资源类型 | 声明权限 | 推断权限 | 状态 | 证据 |
|---|---|---|---|---|
| 网络访问 | READ | READ | ✓ 一致 | Uses info_search and info_scrape MCP tools for web content retrieval |
| 环境变量 | READ | READ | ✓ 一致 | Requires GROUNDAPI_KEY env var, declared in metadata |
| 文件系统 | NONE | NONE | — | No file operations required or performed |
| 命令执行 | NONE | NONE | — | No shell commands or subprocess calls found |
| 剪贴板 | NONE | NONE | — | No clipboard access detected |
| 浏览器 | NONE | NONE | — | Uses MCP tools for web scraping, not direct browser access |
| 数据库 | NONE | NONE | — | No database access required or present |
| 技能调用 | READ | READ | ✓ 一致 | This is a skill itself, naturally requires skill_invoke |
2 项发现
中危 外部 URL 外部 URL
https://groundapi.net SKILL.md:9 中危 外部 URL 外部 URL
https://mcp.groundapi.net/sse SKILL.md:29 目录结构
1 文件 · 3.1 KB · 117 行 Markdown 1f · 117L
└─
SKILL.md
Markdown
安全亮点
✓ All capabilities are explicitly declared in metadata
✓ No scripts or executable code - purely documentation
✓ Credential requirement (GROUNDAPI_KEY) is clearly documented
✓ No hidden functionality or suspicious patterns (no base64, eval, subprocess)
✓ Network access is declared and essential for the stated web research purpose
✓ No credential harvesting or exfiltration detected
✓ Clear output format documentation prevents injection risks